A vulnerability was detected in Releasit Releasit COD Form & Upsells v1. This vulnerability affects unknown code of the component OTP Validation. The manipulation results in client-side enforcement of server-side security. The attack may be launched remotely. The exploit is now public and may be used. Upgrading to version v2 is able to resolve this issue. The affected component should be upgraded.
History

Tue, 01 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Description A vulnerability was detected in Releasit Releasit COD Form & Upsells v1. This vulnerability affects unknown code of the component OTP Validation. The manipulation results in client-side enforcement of server-side security. The attack may be launched remotely. The exploit is now public and may be used. Upgrading to version v2 is able to resolve this issue. The affected component should be upgraded.
Title Releasit Releasit COD Form & Upsells OTP Validation client-side enforcement of server-side security
First Time appeared Releasit
Releasit releasit Cod Form Upsells
Weaknesses CWE-602
CPEs cpe:2.3:a:releasit:releasit_cod_form_upsells:*:*:*:*:*:*:*:*
Vendors & Products Releasit
Releasit releasit Cod Form Upsells
References
Metrics cvssV2_0

{'score': 5, 'vector': 'AV:N/AC:L/Au:N/C:N/I:P/A:N/E:POC/RL:OF/RC:C'}

cvssV3_0

{'score': 5.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N/E:P/RL:O/RC:C'}

cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N/E:P/RL:O/RC:C'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2026-09-01T14:15:08.863Z

Updated: 2026-09-01T14:15:08.863Z

Reserved: 2026-09-01T07:08:59.968Z

Link: CVE-2026-84110

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2026-09-01T15:17:40.983

Modified: 2026-09-01T20:47:54.130

Link: CVE-2026-84110

cve-icon Redhat

No data.